PT-2025-49126 · Medtronic · Medtronic Carelink Network

CVE-2025-12996

·

Published

2025-12-04

·

Updated

2025-12-22

CVSS v3.1

4.1

Medium

VectorAV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Medtronic CareLink Network versions prior to December 4, 2025
Description A local attacker gaining access to log files on an internal API server can view passwords in plaintext due to errors logged under specific conditions.
Recommendations Update to a version of Medtronic CareLink Network released on or after December 4, 2025.

Fix

Insertion into Log File

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-12996

Affected Products

Medtronic Carelink Network